netflix-uat[.]dblxhosting[.]co[.]uk
“Log in - Netflix UAT”
netflix-uat.dblxhosting.co.uk — Não verificado. Representação da marca: Netflix; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 21/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); 1 external blocklist match (Phishunt); CF Radar malicious; PhishDestroy score 95/100. Registrador: Gandi [Tag = GANDI].
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain is flagged as a high-risk credential phishing site specifically targeting Netflix UAT (User Acceptance Testing) environments. Analysis indicates the site is designed to harvest login credentials by mimicking the official Netflix UAT login portal, as evidenced by the page title 'Log in - Netflix UAT.' The threat remains active, posing significant risk to users who may inadvertently disclose sensitive authentication details. Infrastructure analysis reveals multiple concerning indicators. The domain netflix-uat.dblxhosting.co.uk was registered on July 06, 2020, through Gandi (registrar tag GANDI) and currently resolves to the IP address 34.206.156.141, hosted on Amazon.com, Inc. infrastructure (AS14618). The SSL certificate is issued by Amazon RSA 2048 M03, a common provider for both legitimate and malicious sites. Detection metrics further confirm the threat, with 21 out of 95 security vendors on VirusTotal flagging the domain as malicious. Additionally, the domain appears on two security blocklists and is actively blocked by PhishDestroy and Phishunt, reinforcing its classification as a confirmed phishing resource. Mitigation steps for this credential phishing threat include immediate domain blacklisting at the network perimeter to prevent user access. Organizations should implement email and web filtering rules to block all traffic to and from netflix-uat.dblxhosting.co.uk, particularly for users involved in UAT or testing environments. End-user education should emphasize the risks of entering credentials on unverified login pages, even those resembling internal testing portals. Security teams are advised to monitor for credential reuse attempts and enforce multi-factor authentication (MFA) for all Netflix-related accounts to mitigate the impact of potential credential compromise. Given the domain's persistence since 2020, continuous monitoring for related infrastructure or newly registered lookalike domains is recommended.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 6 identified
YouTube is a video sharing service where users can create their own profile, upload videos, watch, like and comment on other videos.
www.youtube.com 100% de confiançaVue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% de confiançaNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaInertia.js is a protocol for creating monolithic single-page applications.
inertiajs.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of netflix-uat.dblxhosting.co.uk · checked Jun 2, 2026
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo